Multiple heap-based buffer overflow... CVE-2023-35955

- AV AC AU C I A
发布: 2024-01-08
修订: 2024-04-09

Multiple heap-based buffer overflow vulnerabilities exist in the fstReaderIterBlocks2 VCDATA parsing functionality of GTKWave 3.3.115. A specially-crafted .fst file can lead to arbitrary code execution. A victim would need to open a malicious file to trigger these vulnerabilities.This vulnerability concerns the decompression function `LZ4_decompress_safe_partial`.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息